Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

suse-cvrf логотип

openSUSE-SU-2023:0159-1

Опубликовано: 29 июн. 2023
Источник: suse-cvrf

Описание

Security update for chromium

This update for chromium fixes the following issues:

  • Chromium 114.0.5735.198 (boo#1212755):

    • CVE-2023-3420: Type Confusion in V8
    • CVE-2023-3421: Use after free in Media
    • CVE-2023-3422: Use after free in Guest View
  • Install Qt5 library & prepare for Qt6 in 115

Список пакетов

SUSE Package Hub 15 SP4
chromedriver-114.0.5735.198-bp155.2.10.1
chromium-114.0.5735.198-bp155.2.10.1
SUSE Package Hub 15 SP5
chromedriver-114.0.5735.198-bp155.2.10.1
chromium-114.0.5735.198-bp155.2.10.1
openSUSE Leap 15.4
chromedriver-114.0.5735.198-bp155.2.10.1
chromium-114.0.5735.198-bp155.2.10.1
openSUSE Leap 15.5
chromedriver-114.0.5735.198-bp155.2.10.1
chromium-114.0.5735.198-bp155.2.10.1

Описание

Type Confusion in V8 in Google Chrome prior to 114.0.5735.198 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High)


Затронутые продукты
SUSE Package Hub 15 SP4:chromedriver-114.0.5735.198-bp155.2.10.1
SUSE Package Hub 15 SP4:chromium-114.0.5735.198-bp155.2.10.1
SUSE Package Hub 15 SP5:chromedriver-114.0.5735.198-bp155.2.10.1
SUSE Package Hub 15 SP5:chromium-114.0.5735.198-bp155.2.10.1

Ссылки

Описание

Use after free in Media in Google Chrome prior to 114.0.5735.198 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High)


Затронутые продукты
SUSE Package Hub 15 SP4:chromedriver-114.0.5735.198-bp155.2.10.1
SUSE Package Hub 15 SP4:chromium-114.0.5735.198-bp155.2.10.1
SUSE Package Hub 15 SP5:chromedriver-114.0.5735.198-bp155.2.10.1
SUSE Package Hub 15 SP5:chromium-114.0.5735.198-bp155.2.10.1

Ссылки

Описание

Use after free in Guest View in Google Chrome prior to 114.0.5735.198 allowed an attacker who convinced a user to install a malicious extension to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High)


Затронутые продукты
SUSE Package Hub 15 SP4:chromedriver-114.0.5735.198-bp155.2.10.1
SUSE Package Hub 15 SP4:chromium-114.0.5735.198-bp155.2.10.1
SUSE Package Hub 15 SP5:chromedriver-114.0.5735.198-bp155.2.10.1
SUSE Package Hub 15 SP5:chromium-114.0.5735.198-bp155.2.10.1

Ссылки